skills/disler/bowser/claude-bowser/Gen Agent Trust Hub

claude-bowser

Pass

Audited by Gen Agent Trust Hub on Feb 22, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [Indirect Prompt Injection] (LOW): The skill enables interaction with external, untrusted web content which could contain malicious instructions for the agent. Ingestion points: Content retrieved through mcp__claude_in_chrome__* tools during browsing and screenshotting. Boundary markers: Absent; the instructions provide no delimiters to separate system instructions from webpage content. Capability inventory: Navigation, element interaction (clicking), and screenshot capture. Sanitization: None; the skill does not include logic to filter or escape webpage data.
  • [SAFE] (SAFE): The skill explicitly uses the user's browser profile as intended for its automation purpose, and no evidence of obfuscation or persistence mechanisms was found.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 22, 2026, 10:07 PM